Hybrid Cloud Policy Gateway Appliance Synchronization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Managing and enforcing policies across hybrid cloud environments is challenging due to differences in rules and architectures between public and private clouds, leading to tedious, time-consuming, and error-prone processes.

Innovation Solution

Implementing a policy gateway appliance in both public and private cloud networks, synchronized to ensure transparent enforcement of compliance policies across the hybrid cloud environment, with the public policy gateway appliance diverting all traffic for compliance and syncing with the private policy gateway appliance to maintain the latest policies.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If separate policy management is implemented for public and private cloud networks, then policy enforcement can be tailored to each cloud's specific rules and architecture, but the complexity of managing multiple policies increases and time consumption grows

Engineering Contradiction:
Improvepolicy enforcement accuracyVSAvoidpolicy management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system segments policy management by deploying separate policy gateway appliances in each cloud network (public and private), allowing each gateway to handle cloud-specific policies independently while maintaining centralized coordination through synchronization between gateways

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The policy gateway appliance is designed as a universal solution that can operate in both public and private cloud environments, providing the same core policy enforcement functionality across different cloud architectures while adapting to cloud-specific rules

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If separate policy management is implemented for public and private cloud networks, then each cloud's specific rules can be addressed, but the time required to update and enforce policies increases

Engineering Contradiction:
Improvecloud-specific complianceVSAvoidpolicy update time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The policy gateway appliances implement feedback mechanisms through synchronization, where policy updates made in one cloud environment are automatically detected and propagated to the other cloud gateway, ensuring both environments remain compliant without manual intervention

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The system performs preliminary synchronization of policy gateway appliances during deployment and maintains continuous readiness to receive and propagate policy updates, eliminating the need for time-consuming manual policy configuration in each cloud environment

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10887350B2Method and system for applying compliance policies on private and public cloud
Publication Date: 2021.01.05 VMWARE INC
  • US10887350B2 patent drawing
  • US10887350B2 patent drawing
  • US10887350B2 patent drawing

AI summary

Syncing compliance policies on a private cloud network and a public cloud network is disclosed. The technology accesses a hybrid cloud environment including: at least one private cloud network and at least one public cloud network. A private policy gateway appliance is coupled with the private cloud network and a public policy gateway appliance, in communication with the private policy gateway appliance, is coupled with the public cloud network. One or more policy rules for the hybrid cloud environment are provided to the private policy gateway appliance which then disseminates the one or more policy rules to the public policy gateway appliance, such that the one or more policy rules are synced for the at least one private cloud network and the at least one public cloud network.